Solved

Draytek 3300

Posted on 2009-05-20
9
1,862 Views
Last Modified: 2012-05-07
Im trying to do a full address map from a public IP to a private IP so I can access a range of TCP and UDP services publically. I have done the mapping on my 3300 in advanced\NAT\address mapping, all the res of the settings are pretty much defalut for now. Is something else blocking it or it there some diagnostics view I can look at?
0
Comment
Question by:mistyfly
  • 5
  • 3
9 Comments
 
LVL 22

Expert Comment

by:mutahir
ID: 24434566
Assuming you are using 1 WAN connection only with multiple Public Addresses (Allocated to you by your ISP as you mentioned in your previous Post).
If you have a Block of Public addresses, you can specify a 2nd Subnet in Lan Settings, Assign ONE Public IP from that POOL with the correct subnet mask and then assign the remainder of your public addresses to your Servers/Machines behind your 3300.
3300 Will route them too and would know and serve requests for them as well.
If you want to just create port mappings , you can put that server in the DMZ option, but because you have public ip pool , I would say to specify the 2nd subnet option.
You can specify the 2nd Public Subnet Per WAN Port of 3300, For e.g. If you are connected via WAN1 you can go under Network Menu > LAN , then click the IP routing TAB, Enable WAN 1 and type ONE IP Address and the correct subnet mask from that POOL of allocated IP Address. You can then specify any Public IP from that pool with that subnet mask to any machine behind 3300 and it will work !!

3300-Lan2nd-Subnet.jpg
0
 

Author Comment

by:mistyfly
ID: 24439679
I an't seem to get it to work. I have given the WAN 1 interface my last useable address in the pool in \Network - WAN - WAN1 - Fast Ethernet\ip address assignment method, and also clicked IP alias and specified all my useable addresses on the WAN interface. Thanks ok and works fine with regards to internet access. I then assigned the first useable public address to the field you said in the above pic, and I also set a NAT route up to my LAN host in the NAT settings but it still will not work
0
 
LVL 22

Expert Comment

by:mutahir
ID: 24441161
The IP Address you assign in IP Routing don't get NAT'd
So, you either specify in WAN IP Alias and leave the 2nd SUBNET (IP Routing option off) or enable IP Routing and then do it.
0
 
LVL 22

Expert Comment

by:mutahir
ID: 24441176
I will look into it later, but the pool you have should be only specified in IP Routing
I am not sure where you are assigning your IP Addresses,
please take scrshots and save it in a pdf file n attach it here.
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 

Author Comment

by:mistyfly
ID: 24441936
I was trying to assign my public IP's in the NAT table? Is this not right. Not quite sure what you need but have attached the below.
300LANIPROUTE.bmp
3300WAN1.bmp
0
 
LVL 22

Expert Comment

by:mutahir
ID: 24443228
Please provide your ip details
the block of ip from your provider with the subnet mask
if you don't specify the ip for your WAN1 ; do you get a dynamic ip from your ISP ?
disable all port forwarding/open port or one to one nat host enteries
just specify the 2nd subnet in your IP routing section of WAN 1
 
0
 

Author Comment

by:mistyfly
ID: 24443493
OK I've got working what I wanted using the port forwarding section, I still have my 2nd subnet disabled on the Lan\ip routing though? I was using Nat\address mapping to try and get my inbound translation to work bu couldn't do it hat way. So i used port re-direction and that worked? Can I do a one-to-one Nat using the 3300 as I thought thats what the address mapping section was for?

Yes I do get a DHCP address from my ISP if I don't specify one in WAN1 PPPoE settings
0
 
LVL 22

Accepted Solution

by:
mutahir earned 500 total points
ID: 24449405
If you have a block of IP Address, you can specify that in 2nd Subnet (WAN > IP Routing section) that will enable you to assign the other public ip addresses from that pool directly to your Servers/Machines, and 3300 will route for them as well ; they won't be natted
Why do you want to use NAT when you have a block of Public address and you can assign them on to your servers directly ? or you can create a one to one NAT as well.
When you do port redirection/port mapping/nat mapping ; make sure to change your 3300 http and https management port to something else then the default ; and make sure you are not over riding any ports.
 
0
 

Expert Comment

by:MARTYL200UK
ID: 36532998
I was wondering if someone can help me out with a similar issue.
I use to use a vigor 2800 router before i got a a draytek v3300 router.
I have two broadband lines bonded together with sharedband. With the vigor 2800v i use to use open ports to director certain ports to certain pc's within the company network from outside. I can not seem to get this to work on the V3300.

Any help would be appreicated.

Martin
0

Featured Post

Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco ASA 5505 with Cisco VPN Client Software - Ping only works one way 9 88
ASA Objects for Non Standard Ports 42 98
Sonicwall SSO 11 51
RDP Sonicwall 8 66
Occasionally, we encounter connectivity issues that appear to be isolated to cable internet service.  The issues we typically encountered were reset errors within Internet Explorer when accessing web sites or continually dropped or failing VPN conne…
Network traffic routing plays key role in your network, if you have single site with heavy browsing or multiple sites, replicating important application data from your Primary Default Gateway ,you have to route your other network traffic from your p…
When you create an app prototype with Adobe XD, you can insert system screens -- sharing or Control Center, for example -- with just a few clicks. This video shows you how. You can take the full course on Experts Exchange at http://bit.ly/XDcourse.
A company’s greatest vulnerability is their email. CEO fraud, ransomware and spear phishing attacks are the no1 threat to a company’s security. Cybercrime is responsible for the largest loss of money to companies today with losses projected to r…

932 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

8 Experts available now in Live!

Get 1:1 Help Now